Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
60 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (4.7) | 0.48% | — | NEC Aterm Wg1200hs2 FirmwareNEC Aterm Wg1900hp FirmwareNEC Aterm Wg1200hp2 FirmwareNEC Aterm W1200ex-ms Firmware+55 | 28/3/2024 | 17/6/2026 | Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N,… | |
| Modificada | Crítica (9.8) | 0.32% | — | Synel Synergy/a FirmwareSynel Synergy Touch FirmwareSynel Synergy 10 FirmwareSynel Synergy 5 Firmware+17 | 3/9/2023 | 17/6/2026 | Synel Terminals - CWE-494: Download of Code Without Integrity Check | |
| Modificada | Alta (7.2) | 0.71% | — | NEC Aterm Wf300hp FirmwareNEC Aterm Wg1400hp FirmwareNEC Aterm Wg1800hp FirmwareNEC Aterm Wg1800hp2 Firmware+13 | 28/6/2023 | 17/6/2026 | Improper Neutralization of Special Elements used in an OS Command vulnerability in NEC Corporation Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all versions allows a attacker to execute an… | |
| Modificada | Media (4.8) | 0.35% | — | NEC Aterm Wf300hp FirmwareNEC Aterm Wg1400hp FirmwareNEC Aterm Wg1800hp FirmwareNEC Aterm Wg1800hp2 Firmware+13 | 28/6/2023 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation vulnerability in NEC Corporation Aterm Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all versions allows a attacker to execute an… | |
| Modificada | Media (5.4) | 0.55% | — | NEC Aterm Wf300hp FirmwareNEC Aterm Wg1400hp FirmwareNEC Aterm Wg1800hp FirmwareNEC Aterm Wg1800hp2 Firmware+13 | 28/6/2023 | 17/6/2026 | Improper Limitation of a Pathname to a Restricted Directory vulnerability in NEC Corporation Aterm Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all versions allows a attacker to delete specific… | |
| Modificada | Media (4.3) | 0.51% | — | NEC Aterm Wf300hp FirmwareNEC Aterm Wg1400hp FirmwareNEC Aterm Wg1800hp FirmwareNEC Aterm Wg1800hp2 Firmware+13 | 28/6/2023 | 17/6/2026 | Improper Limitation of a Pathname to a Restricted Directory vulnerability in NEC Corporation Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all versions allows a attacker to obtain specific files… | |
| Modificada | Media (6.7) | 0.17% | — | Intel Server Board S1200v3rpl FirmwareIntel Server Board S1200v3rpm FirmwareIntel Server Board S1200v3rpo FirmwareIntel Server Board S1200v3rps Firmware+60 | 12/5/2023 | 17/6/2026 | Improper access control in the Intel(R) Server Board S2600WTT belonging to the Intel(R) Server Board S2600WT Family with the BIOS version 0016 may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.8) | 0.37% | — | Buffalo Wsr-3200ax4s FirmwareBuffalo Wsr-3200ax4b FirmwareBuffalo Wsr-2533dhp2 FirmwareBuffalo Wsr-a2533dhp2 Firmware+9 | 19/12/2022 | 17/6/2026 | Hidden functionality vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to enable the debug functionalities and execute an arbitrary command on the affected devices. | |
| Modificada | Media (6.8) | 0.80% | — | Buffalo Wsr-3200ax4s FirmwareBuffalo Wsr-3200ax4b FirmwareBuffalo Wsr-2533dhp2 FirmwareBuffalo Wsr-a2533dhp2 Firmware+6 | 19/12/2022 | 17/6/2026 | OS command injection vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to execute an arbitrary OS command if a specially crafted request is sent to a specific CGI program. | |
| Modificada | Alta (8.8) | 0.81% | — | Buffalo Wsr-3200ax4s FirmwareBuffalo Wsr-3200ax4b FirmwareBuffalo Wsr-2533dhp2 FirmwareBuffalo Wsr-a2533dhp2 Firmware+7 | 19/12/2022 | 17/6/2026 | OS command injection vulnerability in Buffalo network devices allows an network-adjacent attacker to execute an arbitrary OS command if a specially crafted request is sent to the management page. | |
| Modificada | Alta (8.8) | 0.35% | — | Buffalo Wcr-300 FirmwareBuffalo Whr-hp-g300n FirmwareBuffalo Whr-hp-gn FirmwareBuffalo Wpl-05g300 Firmware+71 | 7/12/2022 | 17/6/2026 | Authentication bypass vulnerability in multiple Buffalo network devices allows a network-adjacent attacker to bypass authentication and access the device. The affected products/versions are as follows: WCR-300 firmware Ver. 1.87 and earlier, WHR-HP-G300N firmware Ver. 2.00 and earlier, WHR-HP-GN firmware Ver. 1.87 and… | |
| Modificada | Media (6.8) | 0.33% | — | Buffalo Wcr-300 FirmwareBuffalo Whr-hp-g300n FirmwareBuffalo Whr-hp-gn FirmwareBuffalo Wpl-05g300 Firmware+50 | 7/12/2022 | 17/6/2026 | Hidden functionality vulnerability in multiple Buffalo network devices allows a network-adjacent attacker with an administrative privilege to execute an arbitrary OS command. The affected products/versions are as follows: WCR-300 firmware Ver. 1.87 and earlier, WHR-HP-G300N firmware Ver. 2.00 and earlier, WHR-HP-GN… | |
| Modificada | Media (6.5) | 0.25% | — | Buffalo Wzr-300hp FirmwareBuffalo Wzr-450hp FirmwareBuffalo Wzr-600dhp FirmwareBuffalo Wzr-900dhp Firmware+5 | 7/12/2022 | 17/6/2026 | Use of hard-coded credentials vulnerability in multiple Buffalo network devices allows a network-adjacent attacker to alter?configuration settings of the device. The affected products/versions are as follows: WZR-300HP firmware Ver. 2.00 and earlier, WZR-450HP firmware Ver. 2.00 and earlier, WZR-600DHP firmware Ver.… | |
| Modificada | Media (6.1) | 0.80% | — | NEC Aterm Wg1900hp2 FirmwareNEC Aterm Wg1900hp FirmwareNEC Aterm Wg1800hp4 FirmwareNEC Aterm Wg1800hp3 Firmware+13 | 26/4/2021 | 17/6/2026 | Cross-site scripting vulnerability in NEC Aterm devices (Aterm WG1900HP2 firmware Ver.1.3.1 and earlier, Aterm WG1900HP firmware Ver.2.5.1 and earlier, Aterm WG1800HP4 firmware Ver.1.3.1 and earlier, Aterm WG1800HP3 firmware Ver.1.5.1 and earlier, Aterm WG1200HS2 firmware Ver.2.5.0 and earlier, Aterm WG1200HP3… | |
| Modificada | Media (6.1) | 1.0% | — | Aterm Wg2600hp FirmwareAterm Wg2600hp2 Firmware | 28/1/2021 | 17/6/2026 | Cross-site scripting vulnerability in Aterm WG2600HP firmware Ver1.0.2 and earlier, and Aterm WG2600HP2 firmware Ver1.0.2 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors. | |
| Modificada | Alta (8.8) | 0.65% | — | Aterm Wg2600hp FirmwareAterm Wg2600hp2 Firmware | 28/1/2021 | 17/6/2026 | Cross-site request forgery (CSRF) vulnerability in Aterm WG2600HP firmware Ver1.0.2 and earlier, and Aterm WG2600HP2 firmware Ver1.0.2 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors. | |
| Modificada | Alta (8.8) | 1.8% | — | 360 Safe Router P0 Firmware360 Safe Router P1 Firmware360 Safe Router P2 Firmware360 Safe Router P3 Firmware+1 | 4/11/2019 | 17/6/2026 | A command injection vulnerability exists when the authorized user passes crafted parameter to background process in the router. This affects 360 router series products (360 Safe Router P0,P1,P2,P3,P4), the affected version is V2.0.61.58897. | |
| Modificada | Alta (7.5) | 30% | — | Schneider-electric Modicon M580 FirmwareSchneider-electric Modicon M340 FirmwareSchneider-electric Tsxmcpc002m FirmwareSchneider-electric Tsxmcpc512k Firmware+19 | 29/10/2019 | 17/6/2026 | A CWE-538: File and Directory Information Exposure vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information from the controller when using TFTP protocol. | |
| Modificada | Alta (7.5) | 1.1% | — | Schneider-electric Modicon M580 FirmwareSchneider-electric Modicon M340 FirmwareSchneider-electric Tsxmcpc002m FirmwareSchneider-electric Tsxmcpc512k Firmware+19 | 29/10/2019 | 17/6/2026 | A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists in Modicon M580, Modicon M340, Modicon Premium , Modicon Quantum (all firmware versions), which could cause the disclosure of information when transferring applications to the controller using Modbus TCP protocol. | |
| Modificada | Alta (7.5) | 2.3% | — | Aterm Wg2600hp2 Firmware | 24/8/2018 | 17/6/2026 | An issue was discovered on the NEC Aterm WG2600HP2 1.0.2. The router has a set of web service APIs for access to and setup of the configuration. Some APIs don't require authentication. An attacker could exploit this vulnerability by sending a crafted HTTP request to retrieve DHCP clients, firmware version, and network… | |
| Modificada | Alta (8.2) | 0.37% | — | Philips Intellivue MP2 FirmwarePhilips Intellivue X2 FirmwarePhilips Intellivue Mp30 FirmwarePhilips Intellivue Mp50 Firmware+14 | 5/6/2018 | 17/6/2026 | IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monitors MX (MX400-550) Rev J-M and (X3/MX100 for Rev M only), and Avalon Fetal/Maternal Monitors FM20/FM30/FM40/FM50 with software Revisions F.0, G.0 and J.3 have a vulnerability that exposes an "echo"… | |
| Modificada | Media (5.3) | 0.42% | — | Philips Intellivue MP2 FirmwarePhilips Intellivue X2 FirmwarePhilips Intellivue Mp30 FirmwarePhilips Intellivue Mp50 Firmware+14 | 5/6/2018 | 17/6/2026 | IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monitors MX (MX400-550) Rev J-M and (X3/MX100 for Rev M only), and Avalon Fetal/Maternal Monitors FM20/FM30/FM40/FM50 with software Revisions F.0, G.0 and J.3 have a vulnerability that allows an… | |
| Modificada | Alta (8.3) | 0.39% | — | Philips Intellivue MP2 FirmwarePhilips Intellivue X2 FirmwarePhilips Intellivue Mp30 FirmwarePhilips Intellivue Mp50 Firmware+14 | 5/6/2018 | 17/6/2026 | IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monitors MX (MX400-550) Rev J-M and (X3/MX100 for Rev M only), and Avalon Fetal/Maternal Monitors FM20/FM30/FM40/FM50 with software Revisions F.0, G.0 and J.3 have a vulnerability that allows an… | |
| Modificada | Alta (8.8) | 0.70% | — | Buffalo Wzr-1750dhp2 Firmware | 9/4/2018 | 17/6/2026 | Buffalo WZR-1750DHP2 Ver.2.30 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors. | |
| Modificada | Alta (7.8) | 1.5% | — | Buffalo Wzr-1750dhp2 Firmware | 9/4/2018 | 17/6/2026 | Buffer overflow in Buffalo WZR-1750DHP2 Ver.2.30 and earlier allows an attacker to execute arbitrary code via a specially crafted file. |